In the subsequent article, he talks about turning off server certificate client side validation. There is no need to do that. As long as the certificate subject name, service dns value on the server config and client config match, WCF won't complain.